Work Flexibility: Remote
As a Senior Manager, AI Security Operations & Crisis Management, you will lead the enterprise Cyber Incident Response Team (CIRT) and coordinate incidents through recovery and closure. You will advance AI-enabled operations and crisis readiness with Investigations, Threat Hunting & Forensics and enterprise partners.
What you will do:Technical Responsibilities: • Lead global CIRT operations, including follow-the-sun coverage, escalation, containment, recovery, closure, and continuity during outages.
• Oversee managed detection and response providers, including readiness, governance, performance, escalation quality, budgets, licensing, and commitments.
• Advance responsible AI-assisted triage, investigation, decision support, documentation, and response with oversight, approvals, auditability, and reversibility.
• Own the Cyber Defense digital twin roadmap and operationalize capabilities by defining use cases, requirements, success measures, acceptance, adoption, and legacy retirement.
• Direct incident response; govern non-destructive containment and automated actions; and engage Investigations, Threat Hunting & Forensics when required.
• Monitor response time, escalation and case quality, automation effectiveness, queue health, service levels, and corrective actions.
• Own the detection content lifecycle with Detection Engineering, including rule development, tuning, coverage mapping, and deprecation.
• Partner with Cyber Threat Intelligence, Threat Exposure Management, Vulnerability Management, Security Engineering, and Enterprise Technology to improve response.
Leadership & People Management Responsibilities: • Own cyber crisis management and CIRT activation, including severity criteria, escalation thresholds, leadership notifications, governance, and operational coordination.
• Lead executive briefings, stakeholder updates, reporting, communication cadence, and documentation of significant decisions.
• Coordinate response with crisis, communications, legal, privacy, human resources, procurement, continuity, and technology operations teams.
• Lead executive tabletop, functional, and technical exercises; maintain the roadmap and close corrective actions.
• Lead post-incident reviews and incorporate technical findings and root-cause lessons into playbooks and readiness activities.
• Build CIRT leadership depth through coaching, exercises, structured development, and clear performance expectations.
Knowledge and Capabilities: • Apply incident response, recovery, crisis communications, business continuity, and crisis coordination practices during high-pressure events.
• Translate issues into business terms and coordinate concurrent workstreams using risk-based decisions.
• Integrate FDA, HIPAA, SEC cyber disclosure, sanctions compliance, and other reporting considerations into response processes.
• Address threats involving contractors and contingent workers through identity verification and access revocation coordination.
• Participate in after-hours or on-call incident response and crisis management activities as required.
What You Need: Required Qualifications • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Business, or a related field.
• Minimum 10 years of experience in cybersecurity operations, incident response, crisis management, technology operations, or enterprise service delivery.
• Minimum 5 years of leadership experience managing technical teams, global operations, strategic initiatives, or managed services.
• Experience leading significant cybersecurity incidents with technical, business, legal, communications, and executive stakeholders.
• Experience managing a Security Operations Center, CIRT, Managed Detection and Response service, or comparable operational capability.
• Experience implementing or governing AI-enabled workflows, automation, orchestration, or technology-enabled operational transformation.
Preferred Qualifications • Master's degree in Cybersecurity, Business Administration, Technology Management, or a related discipline.
• Professional certification such as CISSP, CISM, GCIH, ITIL, PMP, or equivalent.
United States of America Pay Ranges:- USN: $155,900 - $259,700 USD Annual
- US5: $163,700 - $272,700 USD Annual
- US10: $171,500 - $285,700 USD Annual
- US15: $179,300 - $298,700 USD Annual
- US20: $187,100 - $311,600 USD Annual
- US30: $202,700 - $337,600 USD Annual
View the U.S. work location and transparency guide to find the pay range for your location.
Travel Percentage: None